Atlassian
The Atlassian integration lets an agent work across Confluence, Jira, and Jira Service Management (JSM) while it’s talking to someone — search the wiki, read and create pages, find and file issues and service requests, comment, and transition work. The agent always acts as the asking user, so it only ever sees and does what that person can already see and do in Atlassian. With an extra one-time setup you can also enable a small set of governed, organization-level admin actions (grant a product, add someone to a project).What it can do
Capabilities are grouped into modules you turn on per agent. Reads are on by default; every write is off until you enable it, and higher-impact writes ask the user to confirm before they run.What it does not do (today)
- No deletes and no bulk operations — the agent creates, updates, comments, and transitions; it doesn’t delete pages or issues or act on many records at once.
- No attachment uploads. It can read attachments (to deliver an embedded image or file to the user), but it doesn’t push files into Confluence or Jira.
- It never invents access. Reads run with the asking person’s own Atlassian permissions. An empty result means “nothing you can see,” not “nothing exists.”
Set up read & write access (each person)
Reads (and the as-the-user writes) take about a minute and need nothing in your Atlassian admin — Cobalt hosts the Atlassian sign-in.Add the integration
acme in acme.atlassian.net (you’ll find
it in the address bar when you’re signed into Jira or Confluence). Then pick
the modules you want — Confluence, Jira, Jira Service Management.Restrict the reach (optional)
ENG, DOCS for spaces; INC, REQ for projects). Leave them
empty to search everything the asking person can already see. The Jira
allowlist applies to both Jira and JSM (service desks are Jira projects).Turn on any write tools you want (optional)
Attest to the access requested
Let users authorize themselves
Set up admin actions (optional)
The admin actions (grant a product, add a user to a project) act at the organization level, so they run under a separate org-admin authorization — not as any individual user.Enable the Admin module
Connect as an Atlassian organization admin
Confirm what the agent may do
Troubleshooting
- “This looks like a classic (Server/Data Center) site.” Only Atlassian Cloud is supported. There’s no setup that makes a self-hosted instance work.
- The agent keeps asking someone to authorize Atlassian. They haven’t finished the Atlassian sign-in, or you recently enabled a write tool that needs a new scope — they approve the added access once, then it works.
- “I couldn’t find that page / issue.” Reads are scoped to the asking person’s own Atlassian access, and — if you set them — to your space/project allowlists. The item may be outside both.
- A privileged admin action says it needs authorization. The Admin module’s org-admin connect hasn’t been completed (or the token was revoked) — finish the Atlassian Admin connect.
FAQ
Does each person need their own Atlassian login?
Does each person need their own Atlassian login?
Will the agent see pages or issues a person shouldn't?
Will the agent see pages or issues a person shouldn't?
Can it edit or transition a Jira issue?
Can it edit or transition a Jira issue?
Does it work with Jira Service Management?
Does it work with Jira Service Management?
Can it delete a page or upload an attachment?
Can it delete a page or upload an attachment?
Related
- Integrations overview — how integrations work in general.
- How Cobalt works — where integrations fit.
